OneAuth 3.0 - Updating your app to the new encryption process

OneAuth 3.0: Updating your app to the new encryption process

What happens while updating

To upgrade your OneAuth app and move to the new encryption process, we will ask you to enter your passphrase. Using your passphrase, we will decrypt the OTP secret keys in Cloud (which were encrypted with AES-ECB mode) to plaintext secret keys. Then, we will encrypt these plaintext secret keys with AES-GCM mode and then store them in Cloud. This way, we will have moved from the old encryption process to the new process (i.e, AES-GCM).


If you don't remember your passphrase, there is no way to decrypt the secret keys present on Cloud, which means they cannot be recovered. However, if you have all your secret keys present locally on your device (i.e., in the Authenticator tab of your OneAuth app), then you can simply reset your passphrase. The secret keys on your device will be encrypted with AES-GCM mode and stored in Cloud.

The problem arises when you don't have all your secret keys locally on any of your devices. When you reset passphrase, the secret keys that you don't have on your device will be lost. You will have to reset TFA for those accounts and add them again in OneAuth.

Steps to update

  1. Get the lateset version of the app from Appstore/Playstore. For Windows, you can get the app from Microsoft Store.
  2. Open OneAuth and go to the Authenticator tab.
  3. In the What's New screen, tap Get Started.
  4. To complete the upgrade, you will need to enter your passphrase. Tap Continue, enter your passphrase, then tap Done.

Forgot your passphrase?

If you forgot your passphrase, we will inform what you can do, based on whether you have all the secret keys available on your device or not.

Case 1: You have the same number of accounts on device as in Cloud

In this case, you can tap View accounts to see the accounts you have on your device and the ones available on Cloud. If all the required accounts are present on your device, you can safely reset your passphrase.

Case 2: Some accounts present on Cloud is missing on your device


    

You can tap Accounts at risk to see which accounts are missing on device. These accounts cannot be recovered if you reset your passphrase.

However, if you're using OneAuth on multiple devices and the missing accounts are present on any of those devices, you can recover them. Follow the steps below:
  1. On your current device, Click Continue and reset your passphrase. The update will be completed and the accounts on your device will be stored on Cloud.
  2. Now, on the device where you have the missing accounts, update the OneAuth app.
  3. Go to the Authenticator tab.
  4. Tap Get Started, then tap Continue.
  5. Enter your new passphrase (which you've reset), then tap Done. The additional accounts present on this device will get backed up to Cloud.

      Create. Review. Publish.

      Write, edit, collaborate on, and publish documents to different content management platforms.

      Get Started Now


        Access your files securely from anywhere

          Zoho CRM Training Programs

          Learn how to use the best tools for sales force automation and better customer engagement from Zoho's implementation specialists.

          Zoho CRM Training
            Redefine the way you work
            with Zoho Workplace

              Zoho DataPrep Personalized Demo

              If you'd like a personalized walk-through of our data preparation tool, please request a demo and we'll be happy to show you how to get the best out of Zoho DataPrep.

              Zoho CRM Training

                Create, share, and deliver

                beautiful slides from anywhere.

                Get Started Now


                  Zoho Sign now offers specialized one-on-one training for both administrators and developers.

                  BOOK A SESSION







                              Quick LinksWorkflow AutomationData Collection
                              Web FormsEnterpriseOnline Data Collection Tool
                              Embeddable FormsBankingBegin Data Collection
                              Interactive FormsWorkplaceData Collection App
                              CRM FormsCustomer ServiceAccessible Forms
                              Digital FormsMarketingForms for Small Business
                              HTML FormsEducationForms for Enterprise
                              Contact FormsE-commerceForms for any business
                              Lead Generation FormsHealthcareForms for Startups
                              Wordpress FormsCustomer onboardingForms for Small Business
                              No Code FormsConstructionRSVP tool for holidays
                              Free FormsTravelFeatures for Order Forms
                              Prefill FormsNon-Profit
                              Intake FormsLegalMobile App
                              Form DesignerHRMobile Forms
                              Card FormsFoodOffline Forms
                              Assign FormsPhotographyMobile Forms Features
                              Translate FormsReal EstateKiosk in Mobile Forms
                              Electronic Forms
                              Drag & drop form builder

                              Notification Emails for FormsAlternativesSecurity & Compliance
                              Holiday FormsGoogle Forms alternative GDPR
                              Form to PDFJotform alternativeHIPAA Forms
                              Email FormsEncrypted Forms

                              Secure Forms

                              WCAG

                                      Create. Review. Publish.

                                      Write, edit, collaborate on, and publish documents to different content management platforms.

                                      Get Started Now






                                                        You are currently viewing the help pages of Qntrl’s earlier version. Click here to view our latest version—Qntrl 3.0's help articles.




                                                            Manage your brands on social media


                                                              • Desk Community Learning Series


                                                              • Digest


                                                              • Functions


                                                              • Meetups


                                                              • Kbase


                                                              • Resources


                                                              • Glossary


                                                              • Desk Marketplace


                                                              • MVP Corner


                                                              • Word of the Day


                                                              • Ask the Experts


                                                                Zoho Sheet Resources

                                                                 

                                                                    Zoho Forms Resources


                                                                      Secure your business
                                                                      communication with Zoho Mail


                                                                      Mail on the move with
                                                                      Zoho Mail mobile application

                                                                        Stay on top of your schedule
                                                                        at all times


                                                                        Carry your calendar with you
                                                                        Anytime, anywhere




                                                                              Zoho Sign Resources

                                                                                Sign, Paperless!

                                                                                Sign and send business documents on the go!

                                                                                Get Started Now




                                                                                        Zoho TeamInbox Resources





                                                                                                  Zoho DataPrep Demo

                                                                                                  Get a personalized demo or POC

                                                                                                  REGISTER NOW


                                                                                                    Design. Discuss. Deliver.

                                                                                                    Create visually engaging stories with Zoho Show.

                                                                                                    Get Started Now









                                                                                                                        • Related Articles

                                                                                                                        • OneAuth 3.0: Enhanced encryption & sync logic of OTP secret keys

                                                                                                                          The need for encrypting OTP secret keys In OneAuth, you can back up your OTP secret keys with Zoho Cloud to have them synced across all your devices and to restore them whenever needed. More about backup and sync Info: "Secret key" refers to the ...
                                                                                                                        • Security key

                                                                                                                          What is a security key? Security key is a hardware device that can be used to enable multi-factor authentication (MFA). They don't require a battery to function and need no software installation to authenticate your accounts. How security keys work? ...
                                                                                                                        • OneAuth

                                                                                                                          Zoho's OneAuth is a multi-factor authentication (MFA) app designed to secure your Zoho accounts as well as other third-party accounts. The key features of OneAuth include the following: Passwordless sign-in allows you to sign in to your account ...
                                                                                                                        • Smart Sign-in using OneAuth

                                                                                                                          Smart Sign-in is a secure and seamless way to sign in to your Zoho account by scanning a QR code using Zoho's Authenticator app, OneAuth. You need not type in your username or password manually. Prerequisites You need OneAuth installed on your mobile ...
                                                                                                                        • Get Started with OneAuth

                                                                                                                          What is OneAuth? OneAuth is a free industry-standard multi-factor authentication (MFA) app developed by Zoho for securing your Zoho accounts and social accounts such as Google, Facebook, and Twitter. Configuring MFA for your online accounts will ...
                                                                                                                          Wherever you are is as good as
                                                                                                                          your workplace

                                                                                                                            Resources

                                                                                                                            Videos

                                                                                                                            Watch comprehensive videos on features and other important topics that will help you master Zoho CRM.



                                                                                                                            eBooks

                                                                                                                            Download free eBooks and access a range of topics to get deeper insight on successfully using Zoho CRM.



                                                                                                                            Webinars

                                                                                                                            Sign up for our webinars and learn the Zoho CRM basics, from customization to sales force automation and more.



                                                                                                                            CRM Tips

                                                                                                                            Make the most of Zoho CRM with these useful tips.



                                                                                                                              Zoho Show Resources